CVE-2023-37484
CVSS V2 None
CVSS V3 None
Description
SAP PowerDesigner - version 16.7, queries all password hashes in the backend database and compares it with the user provided one during login attempt, which might allow an attacker to access password hashes from the client's memory.
Overview
- CVE ID
- CVE-2023-37484
- Assigner
- sap
- Vulnerability Status
- PUBLISHED
- Published Version
- 2023-08-08T00:40:36.427Z
- Last Modified Date
- 2023-08-08T00:40:36.427Z
Weakness Enumerations
References
Reference URL | Reference Tags |
---|---|
https://me.sap.com/notes/3341460 | |
https://www.sap.com/documents/2022/02/fa865ea4-167e-0010-bca6-c68f7e60039b.html |
Sources
Source Name | Source URL |
---|---|
NIST | https://nvd.nist.gov/vuln/detail/CVE-2023-37484 |
MITRE | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-37484 |
History
Created | Old Value | New Value | Data Type | Notes |
---|---|---|---|---|
2024-06-25 00:38:00 | Added to TrackCVE |